Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
The ideal candidate is passionate about automation, cloud-native security, and secure software delivery, and has experience embedding security into modern DevOps environments. Primary Duties and ResponsibilitiesDevSecOps ImplementationDesign and implement security controls within CI/CD pipelines to ensure secure software delivery.
Integrate automated security testing tools such as SAST, DAST, SCA, and container scanning.
Embed security checks into build and deployment processes to identify vulnerabilities early in the SDLC.Platform & Infrastructure SecurityWork with DevOps teams to secure cloud infrastructure, containers, and Kubernetes environments.
Implement Infrastructure-as-Code security scanning and policy enforcement.
Automation & ToolingDevelop automation scripts and integrations to support security workflows.
Maintain and enhance CI/CD platforms and pipeline security tooling.
Integrate vulnerability management tools with development workflows.
CollaborationPartner with developers and QA teams to promote secure coding practices.
Assist engineering teams in remediating vulnerabilities identified during testing and scanning.
Collaborate with internal and customer security teams to implement organizational security standards.
Compliance & GovernanceSupport security compliance requirements such as SOC2, FedRAMP, or DoD security standards where applicable.
Assist with security audits and vulnerability remediation tracking.
Help maintain documentation of DevSecOps processes and controls. Required Qualifications3-6 years of experience in DevOps, DevSecOps, or security engineering.
Experience building and maintaining CI/CD pipelines (GitHub Actions, Jenkins, GitLab CI, or similar).Familiarity with cloud platforms such as AWS, Azure, or GCP.Experience with container technologies (Docker, Kubernetes).Understanding of secure software development lifecycle (SSDLC) practices.
Experience integrating security tools such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Container vulnerability scanningScripting experience (Python, Bash, or similar).Familiarity with Infrastructure as Code tools (Ansible, Terraform, CloudFormation, etc.). Preferred QualificationsExperience implementing DevSecOps practices in enterprise software environments.
Knowledge of container and Kubernetes security best practices.
Experience with secrets management solutions (Vault, AWS Secrets Manager, Azure Key Vault).Familiarity with security frameworks such as
BY
Blue Yonder
DevOps Security Engineer US Citizen, Ogden, Utah
Job Description
Role :
DevOps Security Engineer ( US citizen)Location :
Ogden, UTAH ( 100% Onsite role., NO REMOTE )- US Citizens with current active clearance or who can obtain clearance in the future
- Relocation assistance can be provided for the right candidateBlue Yonder Defense Solutions (BYDS) is seeking a DevSecOps Engineer to help integrate security practices into our software development and DevOps processes.
The ideal candidate is passionate about automation, cloud-native security, and secure software delivery, and has experience embedding security into modern DevOps environments. Primary Duties and ResponsibilitiesDevSecOps ImplementationDesign and implement security controls within CI/CD pipelines to ensure secure software delivery.
Integrate automated security testing tools such as SAST, DAST, SCA, and container scanning.
Embed security checks into build and deployment processes to identify vulnerabilities early in the SDLC.Platform & Infrastructure SecurityWork with DevOps teams to secure cloud infrastructure, containers, and Kubernetes environments.
Implement Infrastructure-as-Code security scanning and policy enforcement.
Automation & ToolingDevelop automation scripts and integrations to support security workflows.
Maintain and enhance CI/CD platforms and pipeline security tooling.
Integrate vulnerability management tools with development workflows.
CollaborationPartner with developers and QA teams to promote secure coding practices.
Assist engineering teams in remediating vulnerabilities identified during testing and scanning.
Collaborate with internal and customer security teams to implement organizational security standards.
Compliance & GovernanceSupport security compliance requirements such as SOC2, FedRAMP, or DoD security standards where applicable.
Assist with security audits and vulnerability remediation tracking.
Help maintain documentation of DevSecOps processes and controls. Required Qualifications3-6 years of experience in DevOps, DevSecOps, or security engineering.
Experience building and maintaining CI/CD pipelines (GitHub Actions, Jenkins, GitLab CI, or similar).Familiarity with cloud platforms such as AWS, Azure, or GCP.Experience with container technologies (Docker, Kubernetes).Understanding of secure software development lifecycle (SSDLC) practices.
Experience integrating security tools such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Container vulnerability scanningScripting experience (Python, Bash, or similar).Familiarity with Infrastructure as Code tools (Ansible, Terraform, CloudFormation, etc.). Preferred QualificationsExperience implementing DevSecOps practices in enterprise software environments.
Knowledge of container and Kubernetes security best practices.
Experience with secrets management solutions (Vault, AWS Secrets Manager, Azure Key Vault).Familiarity with security frameworks such as
NIST, CIS
Benchmarks, OWASP Top 10Experience supporting government or regulated environments (FedRAMP, DoD Impact Levels, etc.).Security certifications such as Security+, CISSP (associate level), Certified Kubernetes Security Specialist (CKS) Key SkillsDevSecOps and secureSDLCCI/CD
automationCloud securityContainer and Kubernetes securityVulnerability managementInfrastructure as CodeSecurity tooling integration Additional SkillsMust be well versed in working with a diverse group of stakeholders- business analysts, solution architects, technical managers, developers, QA, customer ITExcellent communication (verbal and written) and interpersonal skillsAbility to work while embedded in customers' teams remotelyHigh degree of initiative and ownership to take a task and own it from inception to completion Synonym title : Sr Software Engineer#LI-SR1
- the salary range for this position
- $110K
- $135K The salary range information provided, reflects the anticipated base salary range for this position based on current national data.
Career Insights for Cyber Security Engineer
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Michigan data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Cyber Security Engineer designs systems that protect the security of large databases, including databases with customer information and patient files. Examines client computer systems, identifies weak points in security, develops and implements new systems, monitors and responds to security issues.
$108,925 / year median in Michigan
+2% projected growth